Patch Management, Without the Headache
Keep Windows and Linux fleets secure and compliant. PlatyOps Patch handles scheduling, approvals, rollback, and reporting — so your team can focus on engineering, not maintenance windows.
Everything you need to patch at scale
From a single test server to thousands of production hosts — Patch grows with your fleet.
Windows & Linux Patching
Ansible-powered patch execution across Windows (WUA/WSUS) and Linux (apt/yum/dnf) hosts. One workflow, every OS.
Flexible Approval Workflows
Choose Easy Mode for wizard-guided patching or Expert Mode for full control over serial execution, failure thresholds, and maintenance windows.
Live Execution Logs
Watch per-host progress in real time via streaming logs. Know the exact status of every host — queued, running, succeeded, or failed — as it happens.
Automatic Rollback
If a host fails post-patch health checks, Patch triggers OS-native rollback automatically. Recovery scripts deploy to each host so they can revert independently.
WSUS Integration
Single pane of glass for WSUS-managed Windows environments. See WSUS-approved updates alongside Ansible scan results without changing your governance model.
Compliance Reporting
Generate Essential Eight compliance reports with a click. Export to PDF or CSV for auditors, change advisory boards, or internal review.
Service Integrity Checks
Snapshot running services before and after patching. Automatically detect unexpected changes — stopped services, config drift, new listeners — and alert your team.
On-Premises Deployment
Self-host the full Patch stack via Docker Compose. Zero external dependencies, zero data leaving your network — built for security-conscious enterprises.
How Patch works
- 1
Add your hosts
Import hosts individually, via CSV, or connect your CMDB. Group them by environment, team, or criticality.
- 2
Scan for available patches
Patch queries each host for pending updates. Results are stored and available for review — no changes made yet.
- 3
Build and approve a patch plan
Use Easy Mode to generate a safe plan automatically, or Expert Mode to configure every parameter. Approve before anything runs.
- 4
Execute with live monitoring
Ansible executes the plan. Watch per-host progress in real time. Patch handles reboots, retries, and post-patch service checks automatically.
- 5
Review and report
Every job produces an audit trail. Generate compliance reports for Essential Eight or export raw data for your own tooling.
Ready to automate your patch workflow?
Start free with up to 10 hosts. No credit card required.